When running the cplic command what argument is used to show the Signature key?
A-x
B-rn
C-s
F-y all
Which type of NAT allows both incoming and outgoing connections?
ABoth Static and Hide NAT
BHide NAT
CStatic NAT
DPort NAT
What is the name of Software Blade Package containing CDR (Content Disarm & Reconstruction) and Zero Day protection?
AТЕ - Threat Emulation
BSNBT - Sandblast
CNGTX - Next Generation Threat Prevention and Extraction
DNGTP - Next Generation Threat Prevention
Application Control and URL Filtering update files are located in which directory?
A$CPDIR/appi/update
B$FWDIR/conf/update
C$CPDIR/apci/update
D$FWDIR/appi/update/
Question 6
Troubleshooting Administrator - R81.20 (CCTA)
0
Question 7
Troubleshooting Administrator - R81.20 (CCTA)
Question 8
Troubleshooting Administrator - R81.20 (CCTA)
Question 9
Troubleshooting Administrator - R81.20 (CCTA)
Question 10
Troubleshooting Administrator - R81.20 (CCTA)
Question 11
Troubleshooting Administrator - R81.20 (CCTA)
Question 12
Troubleshooting Administrator - R81.20 (CCTA)
Question 13
Troubleshooting Administrator - R81.20 (CCTA)
Question 14
Troubleshooting Administrator - R81.20 (CCTA)
Question 15
Troubleshooting Administrator - R81.20 (CCTA)
Question 16
Troubleshooting Administrator - R81.20 (CCTA)
Question 17
Troubleshooting Administrator - R81.20 (CCTA)
Question 18
Troubleshooting Administrator - R81.20 (CCTA)
Question 19
Troubleshooting Administrator - R81.20 (CCTA)
Question 20
Troubleshooting Administrator - R81.20 (CCTA)
Question 21
Troubleshooting Administrator - R81.20 (CCTA)
Question 22
Troubleshooting Administrator - R81.20 (CCTA)
Question 23
Troubleshooting Administrator - R81.20 (CCTA)
Question 24
Troubleshooting Administrator - R81.20 (CCTA)
Question 25
Troubleshooting Administrator - R81.20 (CCTA)
Ask AstroTutor
0
Ask AstroTutor
0
Ask AstroTutor
0
Ask AstroTutor
0
Ask AstroTutor
0
Ask AstroTutor
0
Ask AstroTutor
0
Ad
Want a break from the ads?
Become a Supporter and enjoy a completely ad-free experience, plus unlock Learn Mode, Exam Mode, AstroTutor AI, and more.
Ask AstroTutor
0
Ask AstroTutor
0
Ask AstroTutor
0
Ask AstroTutor
0
Ask AstroTutor
0
Ask AstroTutor
0
Ask AstroTutor
0
Ask AstroTutor
0
Ask AstroTutor
0
Ask AstroTutor
0
Ask AstroTutor
0
Ask AstroTutor
0
As a security administrator/engineer in your company, you have noticed that your HQ Check Point Security Management Server is not receiving logs from your HQ Check Point Gateway/Cluster. To investigate this issue in the command line, you will need to verify which process is running?
Acpm
Bcpd
Cfwd
Dfwm
To verify that communication is working between the Security Management Server and the Security Gateway, which service port should be checked?
A257
B259
C18209
D19009
You were asked to setup a logging for a rule to log a full list of URLs when the rule hits in the Rule Base. How do you accomplish that?
ASet Extended logging under rule log type
BClick on the rule, column logging and set "log URL" under application control blade layer
CAll URLs are logged by default
DFor URL logging you need to modify blade settings of URL filtering blade under SmartConsole, Manage&Settings, blades, URL filtering
How would you check the connection status of a gateway to the Log server?
Arun netstat -anp | grep :257 in CLISH on Log server
Brun netstat -anp | grep :257 in expert mode on Log server
Crun netstat -anp | grep :18187 in expert mode on Log server
Drun netstat -anp | grep :18187 in CLISH on Log server
UserCenter/PartnerMAP access is based on what criteria?
AThe certification level achieved by employees of an organization.
BUser permissions assigned to company contacts.
CThe certification level achieved by the partner.
DThe level of Support purchased by a company manager.
You want to work with a license for your gateway in User Center portal, but all options are greyed out. What is the reason?
AYour account has classification permission to Viewer
BYour account has classification permission to Licenser
CYou are not defined as Support Contact
DYour account does not have any rights
Running tcpdump causes a significant increase on CPU usage, what other option you should use?
Ao
BO
CI
Di
How many different types of Service Requests exist?
A2
B3
C4
D5
Where would you look to find the error log file to investigate a logging issue on the Security Management Server?
A$FWDIR/log/fwd.elg
B$CPDIR/log/cpd.elg
C$MDS_FWDIR/log/cpm.elg
D$FWDIR/log/fwm.elg
After reviewing the Install Policy report and error codes listed in it. you need to check if the policy installation port is open on the Security Gateway. What is the correct port to check?
A19009
B18190
C18210
D18191
When managing the disk space for locally stored logs, the Delete threshold for the gateway cannot be more than what percentage of the total disk space?
A10%
B25%
C50%
D75%
When accessing License Status in Smart Console, what information is available?
ABlade Name, License Status, Expiration Date, Additional info
You need to capture NAT information into packet capture, what tool is the best suitable for this task?
Atcpdump
Bfw monitor
Ccppcap
Dfw ctl zdebug + xlate xltrc nat
What file extension should be used with fw monitor to allow the output file to be imported and read in Wireshark?
A.pea
B.exe
C.cap
D.tgz
You tested the connection from source to destination and you are not able to find logs in your Security Management. What is the best possible reason?
AThe FWM process crashed on Security Management, therefore logging will not work.
BThere is not enough storage in Security Management, so the logs can't be stored.
CThe logging blade was not enabled on Security Gateway.
DThe gateway is logging locally.
What are some measures you can take to prevent IPS false positives?
ACapture packets, Update the IPS database, and Back up custom IPS files
BUse Recommended IPS profile
CUse IPS only in Detect mode
DExclude problematic services from being protected by IPS (sip, H.323, etc.)
How many captures does the command "fw monitor -p all" take?
AAll 15 of the inbound and outbound modules
BThe -p option takes the same number of captures, but gathers all of the data packet
C1 from every inbound and outbound module of the chain
DAll 4 points of the fw VM modules
What is the difference between the “Super User” and “Read Write All” SmartConsole permission profiles?
A“Read Write All” has the extra ability to make changes within the Gaia operating system
B“Super User” has the extra ability to administer other administrative accounts
C“Super User” has the extra ability to make changes within the Gaia operating system
D“Super User” had the extra ability of being able to use the Management API
The Check Point FW Monitor tool captures and analyzes incoming packets at multiple points in the traffic inspections. Which of the following is the correct inspection flow for traffic?